CVE Vulnerabilities

CVE-2014-4062

Published: Aug 12, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.0 SP2, 3.5, and 3.5.1 does not properly implement the ASLR protection mechanism, which allows remote attackers to obtain sensitive address information via a crafted web site, aka .NET ASLR Vulnerability.

Affected Software

NameVendorStart VersionEnd Version
.net_frameworkMicrosoft1.1-sp1 (including)1.1-sp1 (including)
.net_frameworkMicrosoft2.0-sp2 (including)2.0-sp2 (including)
.net_frameworkMicrosoft3.0-sp2 (including)3.0-sp2 (including)
.net_frameworkMicrosoft3.5 (including)3.5 (including)
.net_frameworkMicrosoft3.5.1 (including)3.5.1 (including)

References